
OWASPWebGoatPHP
A deliberately vulnerable web application for learning web application security.

A deliberately vulnerable web application for learning web application security.

The IoT Security Testing Guide (ISTG) provides a comprehensive methodology for penetration tests in the IoT field, offering flexibility to adapt…

This is a defunct code base. The project is located at: https://github.com/WebGoat

Community-driven project providing guidance and resources to improve browser security, including best practices and educational materials for…

Application Security Verification Standard

Golang Secure Coding Practices guide


The AI Security Verification Standard (AISVS) focuses on providing developers, architects, and security professionals with a structured checklist to…

pysap is an open source Python library that provides modules for crafting and sending packets using SAP's NI, Diag, Enqueue, Router, MS, SNC, IGS,…

Repo to hold mapping of user-security-stories

Vendor-neutral cloud security testing guide with structured phases for enumeration, privilege escalation, lateral movement, and post-exploitation…

Project focused on governance and risk in application security, providing resources and frameworks for security maturity and risk management.

HoneySAP: SAP Low-interaction research honeypot

A documentation and tracking project with the goal of making package management systems more secure.

VULCONHUB provides access to files to build your own hands-on vulnerable container image to learn and practice security

Structured curriculum for learning application security, covering secure coding, threat modeling, and DevSecOps practices. Designed for self-paced…

Coordination structure for AI security standards and guidelines, reducing fragmentation and providing clear guidance for securing AI systems across…